CVE-2020-10364

HIGH

Mikrotik Routeros < 6.44.3 - Resource Allocation Without Limits

Title source: rule
STIX 2.1

Description

The SSH daemon on MikroTik routers through v6.44.3 could allow remote attackers to generate CPU activity, trigger refusal of new authorized connections, and cause a reboot via connect and write system calls, because of uncontrolled resource management.

Exploits (1)

exploitdb WORKING POC
by FarazPajohan · textdoshardware
https://www.exploit-db.com/exploits/48228

Scores

CVSS v3 7.5
EPSS 0.0215
EPSS Percentile 84.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-770
Status published
Products (1)
mikrotik/routeros < 6.44.3
Published Mar 23, 2020
Tracked Since Feb 18, 2026